> -----Original Message-----
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED]]On Behalf Of Ronneil Camara
> > -----Original Message-----
> > From: daveo [mailto:[EMAIL PROTECTED]]
> >
> > I hope I'm not being "sucked in" here but can somebody point
> > me to more info
> > on the 'ultimate firewall'
> >
>
> There is no such thing as ultimate firewall. What can you do for
> a very good
> firewall and yet you don't know how to create tight firewall rules.
The ultimate firewall is pruning sheers being applied to all cables
protruding from your boarder routers. Followed by storing your computers at
your nearest nuclear waste disposal facility.
Each site has it's own concerns, a cookie cutter solution isn't feasible.
For example for a small company, a freebsd box with squid, ipnat, and ipfw
may the best solution. But try selling that solution to say excite.com, with
all the http, smtp and other traffic a site like that generates.
Sameer
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]